Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Arris

First CVE: Jun 12, 2007Active for: 19 yearsTotal CVEs: 27
52.1
VTI Score
TOP TARGET

Arris produces a modestly sized line of residential and small-business networking appliances and firmware, including wireless access points and broadband routers such as the SBR series and VAP2500, that are widely distributed across consumer and ISP deployments. Vulnerabilities affecting this vendor skew strongly toward critical-severity outcomes and frequently acquire public exploit code, reflecting the appeal of internet-exposed home-networking devices for remote compromise and botnet recruitment. The exposure recurs across product lines through weakness classes centered on OS command injection, cross-site request forgery, cross-site scripting, and sensitive information disclosure—attack vectors endemic to web-managed embedded devices with limited input validation and session security. Defenders should inventory affected appliances, restrict management access from untrusted networks, and prioritize firmware updates for these widely distributed gateway devices. Current exploitation activity and severity counts are shown alongside this summary.

FAUCET AI Generated
27
Total CVEs
More Total CVEs than 97% of tracked vendors
0.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 1% of tracked vendors
7.8
Avg CVSS Score
Higher Avg CVSS Score than 76% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Arris over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 12, 2007
19 years ago
Most Recent CVE
May 22, 2024
793 days ago

Products(43 total)

Top CVEs

Signals from CVEs in this vendor scope (27 CVEs).

27 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2014-8423HIGH
Unspecified vulnerability in the management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to execute arbitrary commands via unknown vectors.
Nov 28, 201410.076NOYES
CVE-2014-8424HIGH
ARRIS VAP2500 before FW08.41 does not properly validate passwords, which allows remote attackers to bypass authentication.
Nov 28, 20147.870NOYES
CVE-2022-31793HIGH
do_request in request.c in muhttpd before 1.1.7 allows remote attackers to read arbitrary files by constructing a URL with a single character before a desired path on the filesyste
Aug 4, 20227.542NOYES
CVE-2022-26994CRITICAL
Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in the pptp function via the pptpU
Mar 15, 20229.831NONO
CVE-2022-26993CRITICAL
Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in the pppoe function via the pppo
Mar 15, 20229.831NONO
CVE-2018-20383CRITICAL
ARRIS DG950A 7.10.145 and DG950S 7.10.145.EURO devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.3.6.1.4.1.4491.2.4.1.1.6.1.2.0
Dec 23, 20189.831NONO
CVE-2022-26992CRITICAL
Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in the ddns function via the DdnsU
Mar 15, 20229.830NONO
CVE-2022-26991CRITICAL
Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in the ntp function via the TimeZo
Mar 15, 20229.830NONO
CVE-2022-26990CRITICAL
Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in the firewall-local log function
Mar 15, 20229.830NONO
CVE-2014-8425HIGH
The management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to obtain credentials by reading the configuration files.
Nov 28, 20147.830NOYES
View all 27 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products27 CVEs
22%
48%
26%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local0 (0.0%)
Network14 (51.9%)
Unknown12 (44.4%)
Physical0 (0.0%)
Adjacent Network1 (3.7%)
Attack Complexity
Low15 (55.6%)
High0 (0.0%)
Unknown12 (44.4%)
User Interaction
None13 (48.1%)
Unknown12 (44.4%)
Required2 (7.4%)
Privileges Required
Low0 (0.0%)
High4 (14.8%)
None11 (40.7%)
Unknown12 (44.4%)

Exploit Exposure

Signals from CVEs in this vendor scope (27 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
3 CVEs
11.1% of CVEs· 98th percentile
Nuclei
1 CVE
3.7% of CVEs· 95th percentile
ExploitDB
3 CVEs
11.1% of CVEs· 76th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Arris.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Arris — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Arris's Products

View all 3 CNAs →

Top CWEs